Social engineering, AI-enabled attacks, and connected-device compromise are expanding enterprise cyber risk deeper into trusted relationships and technology supply chains. In today's CXO Daily Cybersecurity Intelligence Brief, ReliaQuest is investigating a social engineering incident in which attackers impersonated security personnel, used convincing phishing domains, and leveraged organizational knowledge to obtain internal credentials—highlighting the risks surrounding privileged access, managed security providers, and trusted support channels. Researchers are also tracking UAT-10147, a China-based cybercrime group using AI-powered automation, including SPECTRE, to target Windows and Linux servers, evade endpoint defenses, and establish persistent access. Meanwhile, threat actors are turning Android-based vehicle infotainment systems into proxy botnets, extending IoT and automotive cybersecurity concerns into credential stuffing, DDoS activity, supply-chain governance, and regulatory compliance. Additional developments include a credential-stuffing incident affecting nearly 139,000 ASOS customers, continuing OT segmentation concerns, emerging risks from autonomous AI agents, and new AWS Network Firewall visibility capabilities. For CISOs, CIOs, boards, and risk leaders, these developments reinforce the need for stronger identity verification, cross-platform detection, AI security governance, IoT risk management, and deeper third-party oversight. Stay informed on the latest cybersecurity threats and the leadership implications shaping enterprise resilience and cyber risk.